--- /usr/src/se/policy/domains/program/unused/postfix.te 2004-10-02 03:36:11.000000000 +1000 +++ domains/program/unused/postfix.te 2004-10-11 15:36:41.000000000 +1000 @@ -94,7 +94,7 @@ dontaudit postfix_master_t selinux_config_t:dir search; can_exec({ sysadm_mail_t system_mail_t }, postfix_master_exec_t) ifdef(`distro_redhat', ` -file_type_auto_trans({ sysadm_mail_t system_mail_t }, postfix_etc_t, etc_aliases_t) +file_type_auto_trans({ sysadm_mail_t system_mail_t postfix_master_t }, postfix_etc_t, etc_aliases_t) ', ` file_type_auto_trans({ sysadm_mail_t system_mail_t }, etc_t, etc_aliases_t) ') @@ -103,7 +103,7 @@ ifdef(`pppd.te', ` domain_auto_trans(pppd_t, postfix_master_exec_t, postfix_master_t) ') -can_exec(postfix_master_t, ls_exec_t) +can_exec(postfix_master_t, { ls_exec_t sbin_t }) allow postfix_master_t sysctl_kernel_t:dir r_dir_perms; allow postfix_master_t sysctl_kernel_t:file r_file_perms; allow postfix_master_t self:fifo_file rw_file_perms; --- /usr/src/se/policy/file_contexts/program/postfix.fc 2004-09-23 22:31:22.000000000 +1000 +++ file_contexts/program/postfix.fc 2004-10-11 15:35:56.000000000 +1000 @@ -18,7 +18,6 @@ /usr/lib(exec)?/postfix/pipe -- system_u:object_r:postfix_pipe_exec_t /usr/sbin/postalias -- system_u:object_r:postfix_master_exec_t /usr/sbin/postcat -- system_u:object_r:postfix_master_exec_t -/usr/sbin/postconf -- system_u:object_r:postfix_master_exec_t /usr/sbin/postdrop -- system_u:object_r:postfix_postdrop_exec_t /usr/sbin/postfix -- system_u:object_r:postfix_master_exec_t /usr/sbin/postkick -- system_u:object_r:postfix_master_exec_t